Re: ISA 2006 question

Tech-Archive recommends: Fix windows errors by optimizing your registry



Hi Jens,

Thanks for the update,

After publishing the server, how would the clients from internet access them?
let me ask you this, becuse I am littel confiuse,

In the Cisco firewalls we install the hardware and all the othere servers
are behind this hardware firewall, (the servers are all on one switch and
then this switch is connected to Cisco) then inside the Cisco we create NAT
or PAT for servers in internal network can access the internet, then with the
help of VPN, the clients from internet first create a VPN connection with the
Cisco firewall then from there with the help of the RDP they connect to the
server that they have access to.

How does this work with the ISA? if now I install the ISA on one of my
servers that I told you about, then publish one of our appliction servers,
how the clients access it? and after installing the ISA on one of the servers
could the rest of the servers access the internet? or I should first create
something link NAT?

all of our servers are belong to a singel domain, where would be the best
place to install the ISA? on a member server or a DC? is there extra
softeware should be install on the rest of the servers (except the one with
ISA itself) I mean do they need some kind of clients to connect with ISA
server?

Sorry for too mach questions, but i am really new to ISA and I want to
secure these servers, and they don't have cache for Cisco firewall so I go
with ISA.

Thanks again,

Shahin

"Jens Baier" wrote:

Hi,

is it possible to configure the ISA, that still our clients can access
there
application on these servers trouw terminal services and RDP? if yes how
should I go about it?
or what is the best prectice, if we want to allow our clients still access
there application on these remote server after installing ISA 2006?

you must publish resources that you want to access from the Internet with
server- or webserver publishing rules.

--
regards Jens
www.nt-faq.de
www.blog.it-training-grote.de
www.it-training-grote.de


.



Relevant Pages

  • Re: ISA 2006 web proxy scenario
    ... The 4 servers are in 2 separate DMZ's - see below. ... internal array and having all traffic handled by the external array. ... You now have a Back-to-Back DMZ sitting between the ISA Array and the PIX. ... Microsoft Internet Security & Acceleration Server: ...
    (microsoft.public.isa)
  • Re: NIC configuration for servers & client to use ISA 2006
    ... ISA 2006 is dual NIC. ... I would like to know how to configure Gateways, DNS on DC's Exchange & ... access Internet through ISA 2006 from Internal. ... All computers inside the LAN use the internal DNS servers. ...
    (microsoft.public.isa)
  • Re: back to back DMZ
    ... As in a back to back DMZ ISA configuration,.. ... The Servers still have to talk to the LAN,..if ... Microsoft Internet Security & Acceleration Server: ...
    (microsoft.public.isa)
  • RE: IIS6 Security and other web servers
    ... IIS6 Security and other web servers ... I know of no Windows architecture that is exposed directly to ... I know of a number of LAMP-type servers that are ... exposed directly to the Internet with no intervening layers. ...
    (Security-Basics)
  • Re: Best practice when creating "Networks" - ISA 2004
    ... I need to allow "clients from internal network" access web servers (ports ... Assume this is a new ISA 2004 EE install. ... >>> network Edge for internet access. ...
    (microsoft.public.isa)